Joost Rijneveld fe252b8093 | 7 years ago | |
---|---|---|
test | 7 years ago | |
ui | 7 years ago | |
.gitignore | 7 years ago | |
.travis.yml | 7 years ago | |
LICENSE | 7 years ago | |
Makefile | 7 years ago | |
README.md | 7 years ago | |
fips202.c | 7 years ago | |
fips202.h | 7 years ago | |
hash.c | 7 years ago | |
hash.h | 7 years ago | |
hash_address.c | 7 years ago | |
hash_address.h | 7 years ago | |
params.c | 7 years ago | |
params.h | 7 years ago | |
randombytes.c | 7 years ago | |
randombytes.h | 7 years ago | |
utils.c | 7 years ago | |
utils.h | 7 years ago | |
wots.c | 7 years ago | |
wots.h | 7 years ago | |
xmss.c | 7 years ago | |
xmss.h | 7 years ago | |
xmss_commons.c | 7 years ago | |
xmss_commons.h | 7 years ago | |
xmss_core.c | 7 years ago | |
xmss_core.h | 7 years ago | |
xmss_core_fast.c | 7 years ago |
This repository contains the reference implementation that accompanies the Internet Draft “XMSS: Extended Hash-Based Signatures”, draft-irtf-cfrg-xmss-hash-based-signatures
.
This reference implementation supports all parameter sets as defined in the Draft at run-time (specified by prefixing the public and private keys with a 32-bit oid
). Implementations that want to use compile-time parameter sets can remove the struct xmss_params
function parameter.
When using the current code base, please be careful, expect changes and watch this document for further documentation. In particular, xmss_core_fast.c
is long due for a serious clean-up. While this will not change its public API or output, it may affect the storage format of the BDS state (i.e. part of the secret key).
For the SHA-2 hash functions (i.e. SHA-256 and SHA-512), we rely on OpenSSL. Make sure to install the OpenSSL development headers. On Debian-based systems, this is achieved by installing the OpenSSL development package libssl-dev
.
This reference implementation was written by Andreas Hülsing and Joost Rijneveld. All included code is available under the CC0 1.0 Universal Public Domain Dedication.